Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

H2 HIGH 7.5
CVE-2023-26964

An issue was discovered in hyper v0.13.7. h2-0.2.4 Stream stacking occurs when the H2 component processes HTTP2 RST_STREAM frames. As a result, the m…

No fix yet
Fix from $1,950 2023-04-11
Hyper HIGH 7.5
CVE-2022-31394

Hyperium Hyper before 0.14.19 does not allow for customization of the max_header_list_size method in the H2 third-party software, allowing attackers …

Fix: 0.14.19+
Fix from $1,950 2023-02-21
Hyper CRITICAL 9.1
CVE-2021-32714

hyper is an HTTP library for Rust. In versions prior to 0.14.10, hyper's HTTP server and client code had a flaw that could trigger an integer overflo…

Fix: 0.14.10+
Fix from $2,300 2021-07-07
Hyper MEDIUM 5.3
CVE-2021-32715

hyper is an HTTP library for rust. hyper's HTTP/1 server code had a flaw that incorrectly parses and accepts requests with a `Content-Length` header …

Fix: 0.14.10+
Fix from $1,600 2021-07-07
Hyper HIGH 8.1
CVE-2021-21299

hyper is an open-source HTTP library for Rust (crates.io). In hyper from version 0.12.0 and before versions 0.13.10 and 0.14.3 there is a vulnerabili…

Fix: 0.13.10 / 0.14.3+
Fix from $1,950 2021-02-11
Hyper CRITICAL 9.8
CVE-2020-35863

An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situ…

Fix: 0.12.34+
Fix from $2,300 2020-12-31
Http CRITICAL 9.8
CVE-2019-25009

An issue was discovered in the http crate before 0.1.20 for Rust. The HeaderMap::Drain API can use a raw pointer, defeating soundness.

Fix: 0.1.20+
Fix from $2,300 2020-12-31
Http HIGH 7.5
CVE-2020-25574

An issue was discovered in the http crate before 0.1.20 for Rust. An integer overflow in HeaderMap::reserve() could result in denial of service (e.g.…

Fix: 0.1.20+
Fix from $1,950 2020-09-14
Hyper MEDIUM 5.3
CVE-2017-18587

An issue was discovered in the hyper crate before 0.9.18 for Rust. It mishandles newlines in headers.

Fix: 0.9.18 / 0.10.2+
Fix from $1,600 2019-08-26
Hyperstart MEDIUM 5.3
CVE-2018-10205

hyperstart 1.0.0 in HyperHQ Hyper has memory leaks in the container_setup_modules and hyper_rescan_scsi functions in container.c, related to runV 1.0…

Patch available
Fix from $1,600 2018-04-19
Runv HIGH 7.8
CVE-2018-9862

util.c in runV 1.0.0 for Docker mishandles a numeric username, which allows attackers to obtain root access by leveraging the presence of an initial …

Patch available
Fix from $1,950 2018-04-09